GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
Filter advisories
GitHub reviewed advisories
Unreviewed advisories
Malware advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
108
GitHub Actions
54
Go
4,508
Maven
5,000+
npm
5,000+
NuGet
1,091
pip
5,000+
Pub
13
RubyGems
1,145
Rust
1,511
Swift
62
Unreviewed advisories
All unreviewed
5,000+
Malware advisories
All malware
5,000+
Composer
1
Go
18
Maven
2
npm
5,000+
NuGet
264
pip
5,000+
RubyGems
3,510
Rust
10
689 advisories
Filter by severity
Privilege escalation in mysql-connector-jav
Moderate
CVE-2019-2692
was published
for
mysql:mysql-connector-java
(Maven)
Jul 1, 2020
Clarify `mediaType` handling
Low
GHSA-77vh-xpmg-72qh
was published
for
github.com/opencontainers/image-spec
(Go)
Nov 18, 2021
Cross-site Scripting in bootstrap-table
Low
CVE-2021-23472
was published
for
bootstrap-table
(npm)
Nov 8, 2021
Access of Resource Using Incompatible Type in Hermes
Critical
CVE-2021-24044
was published
for
hermes-engine
(npm)
Jan 16, 2022
There is a vulnerability of accessing resources using an incompatible type (type confusion) in...
High
Unreviewed
CVE-2021-40061
was published
Mar 11, 2022
Type confusion in loader in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to...
High
Unreviewed
CVE-2021-4056
was published
Dec 24, 2021
Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to...
High
Unreviewed
CVE-2021-4061
was published
Dec 24, 2021
Type confusion in V8 in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to...
High
Unreviewed
CVE-2021-4078
was published
Dec 24, 2021
A type confusion issue was addressed with improved state handling. This issue is fixed in macOS...
High
Unreviewed
CVE-2022-22661
was published
Mar 19, 2022
Type Confusion in ImpressCMS
Critical
CVE-2021-26600
was published
for
impresscms/impresscms
(Composer)
Mar 29, 2022
Type Confusion in LiveHelperChat
High
CVE-2022-1176
was published
for
remdex/livehelperchat
(Composer)
Apr 1, 2022
Type confusion in Blink Layout in Google Chrome prior to 99.0.4844.51 allowed a remote attacker...
High
Unreviewed
CVE-2022-0795
was published
Apr 6, 2022
Type confusion in V8 in Google Chrome prior to 98.0.4758.80 allowed a remote attacker to...
High
Unreviewed
CVE-2022-0457
was published
Apr 6, 2022
Prototype Pollution in json-pointer
Moderate
CVE-2021-23820
was published
for
json-pointer
(npm)
Nov 8, 2021
Access of Resource Using Incompatible Type in Facebook Hermes
Critical
CVE-2020-1911
was published
for
hermes-engine
(npm)
May 24, 2022
Delta Electronics DIAScreen versions prior to 1.1.0 are vulnerable to type confusion, which may...
High
Unreviewed
CVE-2021-32965
was published
May 25, 2022
A type confusion issue was addressed with improved memory handling. This issue is fixed in Safari...
High
Unreviewed
CVE-2020-9948
was published
May 24, 2022
Type confusion in V8 in Google Chrome prior to 103.0.5060.53 allowed a remote attacker to...
High
Unreviewed
CVE-2022-2158
was published
Jul 29, 2022
Type confusion in V8 in Google Chrome prior to 100.0.4896.75 allowed a remote attacker to...
High
Unreviewed
CVE-2022-1232
was published
Jul 26, 2022
Adobe Acrobat Reader versions 22.001.20142 (and earlier), 20.005.30334 (and earlier) and 17.012...
High
Unreviewed
CVE-2022-34221
was published
Jul 16, 2022
Type confusion in V8 in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to obtain...
High
Unreviewed
CVE-2022-1486
was published
Jul 27, 2022
Type Confusion in V8 in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to...
Moderate
Unreviewed
CVE-2022-1869
was published
Jul 28, 2022
An issue was discovered in the Linux kernel through 5.18.9. A type confusion bug in...
High
Unreviewed
CVE-2022-34918
was published
Jul 5, 2022
Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted...
Moderate
Unreviewed
CVE-2020-16229
was published
May 24, 2022
In mailbox, there is a possible out of bounds write due to type confusion. This could lead to...
Moderate
Unreviewed
CVE-2022-26433
was published
Aug 2, 2022
ProTip!
Advisories are also available from the
GraphQL API